Detailed analysis of captured phishing page
Used to detect similar phishing pages based on HTML content
| Algorithm | Hash Value |
|---|---|
|
CONTENT
TLSH
|
T10EE1EF70E051E93341FF81D8B6762E5F35F84394FA46434895A9C3E846D6E9ECE33862 |
|
CONTENT
ssdeep
|
96:TtNVq78iFT6+sGF3JJoFcZEpu1n0ARXU+6p6OIs7Pid/0GuejABR/wQr5JoKem:B6wiFTdsGbJotp25/0GuecbwQnoKr |
Used to detect visually similar phishing pages based on screenshots
| Algorithm | Hash Value |
|---|---|
|
VISUAL
pHash
|
8e19194edcd84f4e |
|
VISUAL
aHash
|
000b01ff3430ffff |
|
VISUAL
dHash
|
72dbdfb46565e5d5 |
|
VISUAL
wHash
|
000b01ff3030ffff |
|
VISUAL
colorHash
|
07207000000 |
|
VISUAL
cropResistant
|
8282e26a6aa28282,dbdf99e46565a555,63db1adbdbefbd9e,d9e6766663697926,4c9736666d595932,fdeb5be7e7cf4dcc,6c5e5e5e7e7c7c78,3b0d040404149594,b3e7676e6e7e3e2d |
Victim enters username and password into fake login form. Credentials are captured via JavaScript and exfiltrated to attacker's server in real-time.
Uses typical phishing tactics including brand impersonation, urgency tactics, and social engineering to trick victims into providing sensitive information.